The WebAdmin context for WebSphere Message Broker allows directory listings which could disclose sensitive information to the attacker.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/94641 | vdb entry technical description |
http://www.ibm.com/support/docview.wss?uid=swg21995004 | patch vendor advisory |